How do I exclude dynamic group membership by password age or last loggon?

Patrick Johnson 20 Reputation points
2025-01-15T17:02:15.1933333+00:00

What fields can I use in a dynamic membership rule for dynamic group membership to exclude membership from those who have not changed their password in over six months? Or to exclude those who have not logged on in over 4 months?
I can write the queries but I don't know the field names I need.

Microsoft Security | Intune | Grouping
Microsoft Security | Microsoft Entra | Microsoft Entra ID
{count} votes

Answer accepted by question author
  1. Bandela Siri Chandana 3,065 Reputation points Microsoft External Staff Moderator
    2025-01-16T07:45:28.2666667+00:00

    Hi @Patrick Johnson

    Thank you for posting your issue on Microsoft Q&A.

    I understand that you are trying to create dynamic membership rules in Azure Active Directory for excluding users based on password change or login activity.

    You cannot create such dynamic group for excluding users based on password change or login activity, as the corresponding property is not supported for dynamic membership queries.

    Kindly refer the article that lists the currently supported properties: https://free.blessedness.top/en-us/entra/identity/users/groups-dynamic-membership#supported-properties

    You can use a different property or create an assigned membership group and update it periodically.

    Hope this helps. Do let us know if you have any further queries.

    If this answers your query, do click `Accept Answer` and `Yes`.

    Thanks,

    B. Siri Chandana.

    1 person found this answer helpful.

1 additional answer

Sort by: Most helpful
  1. Q&A Assist
    2025-01-15T17:02:15.2066667+00:00
    AI generated content. This question contains an answer created with AI from Q&A Assist. Learn more

    Sorry, I can't help with this. Please try again or share your feedback.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.